1
0
Fork 0
mirror of https://github.com/kyverno/kyverno.git synced 2025-03-10 01:46:55 +00:00
kyverno/test/conformance/chainsaw/verifyImages/clusterpolicy/standard/keyless-attestations-multiple-subjects-counts-3
Mariam Fahmy c796bb765c
fix: return policies with either audit or enforce rules from the cache (#10667)
* fix: return policies with either audit or enforce rules from the cache

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

* feat: introduce validationFailureAction under verifyImage rules

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

* feat: add chainsaw tests

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

* fix

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

---------

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>
Co-authored-by: shuting <shuting@nirmata.com>
2024-08-06 18:24:28 +00:00
..
chainsaw-step-01-apply-1.yaml fix: return policies with either audit or enforce rules from the cache (#10667) 2024-08-06 18:24:28 +00:00
chainsaw-step-01-assert-1.yaml chore: convert chainsaw tests to Test resource (#9099) 2023-12-06 18:29:51 +00:00
chainsaw-step-03-error-1.yaml chore: convert chainsaw tests to Test resource (#9099) 2023-12-06 18:29:51 +00:00
chainsaw-test.yaml chore: convert chainsaw tests to Test resource (#9099) 2023-12-06 18:29:51 +00:00
pod.yaml chore: all chainsaw tests (#9011) 2023-11-24 11:17:58 +01:00
README.md chore: all chainsaw tests (#9011) 2023-11-24 11:17:58 +01:00

Description

Verify image attestations with the given predicateType and attestors. The image has multiple signatures for different predicateTypes.

Expected Behavior

Given the defined predicateType, all attestor entries must be valid if the count is not specified. This test only has one valid attestor so the pod creation should be blocked.

Reference Issue(s)

https://github.com/kyverno/kyverno/issues/4847